Following the coordinated and responsible vulnerability disclosure guidelines of the **[ISO 29147]()** standard, Open Bug Bounty has: a. verified the vulnerability and confirmed its existence; b. not ...
Continue ReadingMay 01, 2023
In Moodle, Users' names required additional sanitizing in the account confirmation email, to prevent a self-registration phishing risk.Read More ...
Continue ReadingMarch 07, 2023
In Moodle, ID numbers exported in HTML data formats required additional sanitizing to prevent a local stored XSS risk.Read More ...
Continue ReadingMarch 07, 2023
AgileBio Electronic Lab Notebook v4.234 was discovered to contain a local file inclusion vulnerability.Read More ...
Continue ReadingMarch 07, 2023
PMB v7.4.6 was discovered to contain a remote code execution (RCE) vulnerability via the component /sauvegarde/restaure_act.php.Read More ...
Continue ReadingMarch 06, 2023
This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will b ...
Continue ReadingFebruary 27, 2023
## Introduction Project Loom aims to bring "easy-to-use, high-throughput, lightweight concurrency" to the JRE. One feature introduced by Project Loom is virtual threads. In this blog post, we'll be ex ...
Continue ReadingFebruary 27, 2023
## Description ### Impact When cron jobs were misconfigured and therefore messages are not expired, the API would still return them while they were then hidden by the frontend code. ### Patches It is ...
Continue ReadingFebruary 27, 2023
Back to Main